Owner's Manual
Chapter 17. Security | 479
NETGEAR 8800 User Manual
RADIUS Server Configuration Guidelines
The RADIUS server is introduced in Configuring the RADIUS Client on page 475. This
section describes the following:
• Configuring User Authentication (Users File) on page 479
• Configuring the Dictionary File on page 489
• Configuring Command Authorization (RADIUS Profiles) on page 489
• Additional RADIUS Configuration Examples on page 492
• Implementation Notes for Specific RADIUS Servers on page 496
• Setting Up Open LDAP on page 498
Note: For information on how to use and configure your RADIUS server,
see the documentation that came with your RADIUS server.
Configuring User Authentication (Users File)
User authentication is configured in the users file on a FreeRADIUS server. Other RADIUS
servers might use a different name and a different syntax for configuration, but the basic
components of the users file and user authentication are the same.
For NETGEAR switches, there are three types of users file entries:
• Session management entries
• Network login user entries
• Network login MAC address entries
Note: The “users” file is case-sensitive, and punctuation is very important
for FreeRADIUS.
The following sections describe the users file entries and some of the attributes they contain:
• Session Management Entries on page 479
• Network Login User Entries on page 480
• Network Login MAC Address Entries on page 480
• Standard RADIUS Attributes Used by NETGEAR Switches on page 481
• NETGEAR VSAs on page 483
Session Management Entries
The following is an example of a session management entry:










